Skip to main content
Jeden Skill in Manus ausführen
mit einem Klick

analyse-chronicle-delays

Sterne6
Forks0
Aktualisiert29. Mai 2026 um 20:43

Analyse ingestion and detection timing for one or more Chronicle (Google SecOps) SOAR cases. Surface delays between event_timestamp → ingested_timestamp (ingestion delay) and ingested_timestamp → detection_timestamp (SIEM/rule-engine delay), and flag any `DETECTION_TIMING_DETAILS_*` tags on individual alerts (e.g. REPROCESSING, BACKFILL). Use whenever the user runs `/analyse-chronicle-delays <caseId> [<caseId>...]`, says "analyse delays in case <id>", "ingestion timing for case <id>", "why is case <id> slow", "check detection latency for cases <ids>", or shares one or more Chronicle case URLs with timing questions. Read-only by design: never closes cases, never posts comments.

Installation

Mit Codex oder Claude installieren Kopieren Sie diesen Prompt, fügen Sie ihn in Codex, Claude oder einen anderen Assistant ein und lassen Sie die Skill-Seite prüfen und installieren.

SKILL.md
readonly